awt-e2e-testing
Warn
Audited by Socket on Aug 2, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the stated testing capabilities broadly fit the purpose, but the skill's main concern is transitive installation of a third-party GitHub skill that would inherit agent permissions, plus browser automation over untrusted web content. No clear credential-harvesting or malicious exfiltration is described in the provided text, so this is better classified as elevated trust/scope risk than confirmed malware.
Confidence: 84%Severity: 62%
Audit Metadata